Senior Application Security Engineer

Uniswaplabs

Apply to this job
New York or US-based Remote Until 8/22/2026 First posted November 4, 2025 Last posted November 4, 2025
Job description

We’re looking for a Senior Application Security Engineer to help shape the security of Uniswap’s products and infrastructure. You’ll play a leading role in protecting one of the most widely used protocols in DeFi and will work across teams to embed security into everything we build, mentor other engineers, and strengthen our overall security posture.

What You’ll Do

  • Partner with engineering and product teams to design and build secure systems across web, mobile, and backend environments.
  • Lead threat modeling, code reviews, and vulnerability assessments to identify and mitigate risks early in the SDLC.
  • Define and evolve secure development practices, including tooling, automation, and developer education.
  • Investigate and respond to application security incidents, drive root cause analysis, and implement long-term preventive measures.
  • Evaluate new security technologies and approaches to continuously raise the bar for application and protocol security.
  • Mentor engineers and foster a culture of security awareness and shared responsibility.

What You Bring

  • Bachelor’s or Master’s degree in Computer Science, Engineering, or a related field.
  • 5+ years of experience in application security or related fields, ideally with experience in fast-moving or high-impact environments.
  • Strong understanding of web, mobile, and cryptographic security fundamentals (e.g. OWASP Top Ten, SANS/CWE Top 25).
  • Hands-on experience with security testing tools and methodologies (static/dynamic analysis, pen testing, etc.).
  • Proficiency in programming and scripting languages (Java, Javascript, Python preferred)
  • Experience with cloud and containerized environments (AWS, GCP, Docker, Kubernetes).
  • Excellent communication skills and the ability to influence and collaborate across teams.

Nice to Haves

  • Familiarity with crypto or DeFi systems and their unique security challenges.
  • Experience with DevSecOps practices and automation.
  • Knowledge of IAM and authentication standards (OAuth, SAML) or compliance frameworks (GDPR, PCI-DSS).
  • Relevant certifications (CISSP, OSCP, CSSLP).
  • Love for unicorns 🦄

Minimum full-time salary of $230,000 - $255,000. Disclosure in accordance with New York City's Pay Transparency Law. Full Time employees at Uniswap Labs are also eligible for other compensation elements, including equity, tokens, and benefits, dependent on the position type.

Uniswap Labs' Full-Time employee benefits include company-paid medical, dental, & vision for you and your dependents, gym subsidy, 401(k) with 4% employer contribution, annual $1,500 education stipend, unlimited and encouraged time off, up to 16 weeks paid parental leave, home office setup stipend for remote employees and daily lunches at NY headquarters (all benefits are subject to applicable taxes and based on eligibility).

Uniswap Labs is committed to diversity in our workforce and is proud to be an Equal Opportunity Employer (EEO). We provide employment opportunities without regard to age, race, color, ancestry, national origin, religion, disability (including gender dysphoria and similar gender-related conditions), sex, gender identity or expression, sexual orientation (including actual or perceived heterosexuality, homosexuality, bisexuality, and asexuality), veteran status, military status, domestic violence victim status, reproductive health decision making or any other protected category. In addition, Uniswap Labs participates in E-Verify. You can view the E-Verify poster here and the Right to Work poster here.

About this role

Summary

Design, implement, and improve security measures for Uniswap's products and infrastructure.

Job title

Senior Application Security Engineer

Experience level

5+ years

Industry

software

Location requirements

New York or remote in US, full-time

Salary

$230,000 - $255,000

Management role

No

Skills & keywords

Required skills

web securitymobile securitycryptographysecurity testingprogramming: Java, Javascript, Pythoncloud: AWS, GCPcontainer: Docker, Kubernetes

Preferred skills

cryptoDeFiDevSecOpsIAMcertifications: CISSP, OSCP, CSSLP

Specializations

application securitycryptographycloudDevSecOpspenetration testing
Locations

Structured locations inferred from the posting.

New York, NY, USA

Remote City